Advertisement
Guest User

Untitled

a guest
Jul 9th, 2011
183
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.77 KB | None | 0 0
  1. *filter
  2. :INPUT DROP
  3. :FORWARD DROP
  4. :OUTPUT ACCEPT
  5. -A INPUT -i lo -j ACCEPT
  6. -A INPUT -p tcp -m tcp ! --tcp-flags FIN,SYN,RST,ACK SYN -m state --state NEW -j DROP
  7. -A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
  8. -A INPUT -p tcp -m tcp --dport 21 -m state --state NEW -j ACCEPT
  9. -A INPUT -p tcp --dport SOME PORT NUMBER --syn -m limit --limit 1/m --limit-burst 3 -j ACCEPT
  10. -A INPUT -p tcp --dport OME PORT NUMBER --syn -j DROP
  11. -A INPUT -p tcp -m tcp --dport OME PORT NUMBER -m state --state NEW -j ACCEPT
  12. -A INPUT -p tcp -m tcp --dport 80 -m state --state NEW -j ACCEPT
  13. -A INPUT -p tcp -m tcp --dport 443 -m state --state NEW -j ACCEPT
  14. -A INPUT -p icmp -m icmp --icmp-type 8 -j ACCEPT
  15. -A INPUT -p icmp -m icmp --icmp-type 11 -j ACCEPT
  16. -A OUTPUT -o lo -j ACCEPT
  17. COMMIT
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement